CNNVD-202510-3989 Information

CNNVD ID

CNNVD-202510-3989

CVE-2025-12148

  • CNNVD Published: 2025-10-29

Description (Chinese)

Floragunn Search Guard FLX是德国Floragunn公司的一款用于保护Elastic Search的安全组件。 Floragunn Search Guard FLX 3.1.1及之前版本存在安全漏洞,该漏洞源于IP类型字段的字段掩码规则执行不当,可能导致原始字段内容被重建。

Description (English)

Floragunn Search Guard FLX is a security component of the German company Floragunn used to protect Elastic Search. There was a security loophole in Floragunn Search Guard FLX 3.1.1 and earlier versions, which stemmed from the inappropriate implementation of field mask rules for IP type fields, which could lead to the reconstruction of the original field content.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Floragunn

Published

2025-10-29

Last Modified

2026-02-24

References

https://docs.search-guard.com/latest/changelog-searchguard-flx-3_1_2 https://search-guard.com/cve-advisory/

Patch

https://search-guard.com/cve-advisory/

Share on: